Critical severity9.8NVD Advisory· Published Jul 7, 2023· Updated Jun 17, 2026
CVE-2023-27845
CVE-2023-27845
Description
SQL injection vulnerability found in PrestaShop lekerawen_ocs before v.1.4.1 allow a remote attacker to gain privileges via the KerawenHelper::setCartOperationInfo, and KerawenHelper::resetCheckoutSessionData components.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4<1.4.1+ 1 more
- (no CPE)range: <1.4.1
- (no CPE)
- Range: <1.4.1
- cpe:2.3:a:kerawen:omnichannel_stocks:*:*:*:*:*:prestashop:*:*Range: <1.4.1
Patches
Vulnerability mechanics
References
2- security.friendsofpresta.org/modules/2023/07/06/kerawen_ocs.htmlnvdExploitPatchThird Party Advisory
- kerawen.com/logiciel-de-caisse/nvdProduct
News mentions
0No linked articles in our index yet.